CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.0. It affects WordPress. It may be remotely exploitable.
CVE
CVE-2014-3844
Severity
MEDIUM
CVSS
5
EPSS
1.78%
WordPress
Original NVD Description
The TinyMCE Color Picker plugin before 1.2 for WordPress does not properly check permissions, which allows remote attackers to modify plugin settings via unspecified vectors. NOTE: some of these details are obtained from third party information.